Using EMET to Disable EMET

Using EMET to Disable EMET

Black Hat via YouTube Direct link

Using EMET in Import Address Table

18 of 34

18 of 34

Using EMET in Import Address Table

Class Central Classrooms beta

YouTube videos curated by Class Central.

Classroom Contents

Using EMET to Disable EMET

Automatically move to the next video in the Classroom when playback concludes

  1. 1 Introduction
  2. 2 Who am I
  3. 3 Amit
  4. 4 Lost the battery
  5. 5 Funny story
  6. 6 Load Library
  7. 7 EMET protections
  8. 8 Antidote
  9. 9 Previous Technique
  10. 10 Evaluation Techniques
  11. 11 Stackable Check
  12. 12 Custom Class Check
  13. 13 College Check
  14. 14 Call Register Return Gadget
  15. 15 Return into Shell Code
  16. 16 Same Exit Flow
  17. 17 Using EMET in MS HTML
  18. 18 Using EMET in Import Address Table
  19. 19 Targeted Evasion
  20. 20 Assumptions
  21. 21 API Address
  22. 22 Relative Jump
  23. 23 The Problem
  24. 24 Main Highlights
  25. 25 New Technique
  26. 26 DLL Main Prototype
  27. 27 Data Structures
  28. 28 Loading Library
  29. 29 Setting Context Thread
  30. 30 Exploit Implementation
  31. 31 Exploit Gadgets
  32. 32 How did Microsoft fix it
  33. 33 Importance of custom exploit prevention techniques
  34. 34 Demo

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.